Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Filis
Návštěvník
Návštěvník
Příspěvky: 205
Registrován: 21 čer 2005 11:18

Prosím o preventivku

#1 Příspěvek od Filis »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-05.2019
Ran by Filip (28-05-2019 20:16:53)
Running from C:\Users\Filip\Desktop
Windows 10 Home (X64) (2019-03-14 01:44:45)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3054716200-2897486703-4280449553-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3054716200-2897486703-4280449553-503 - Limited - Disabled)
Filip (S-1-5-21-3054716200-2897486703-4280449553-1001 - Administrator - Enabled) => C:\Users\Filip
Guest (S-1-5-21-3054716200-2897486703-4280449553-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3054716200-2897486703-4280449553-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ActKey (HKLM-x32\...\{681B82EF-A457-4849-AABC-5B6099380FA5}) (Version: 1.7.1.0 - Oki Data Corporation) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.012.20034 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Akamai) (Version: - Akamai Technologies, Inc)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.5.2378 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 73.0.1270.87 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.154.333 - AVAST Software) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.57 - Piriform)
Conexant Audio Filter Agent (HKLM\...\cAudioFilterAgent) (Version: 1.7.102.0 - Conexant Systems)
Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{DA3BB5D6-55FE-4632-87E3-9E823C67B58B}) (Version: 18.1.0.690 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM-x32\...\{DA3BB5D6-55FE-4632-87E3-9E823C67B58B}) (Version: 18.1.690 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 64 Bit Keys (HKLM\...\{69D1C50E-6E4D-416D-A632-875EB3C5EF8A}) (Version: 18.1.690 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - BR (HKLM-x32\...\{1E6087A4-1715-4B43-9090-A3B1EFD55EF8}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Capture (HKLM-x32\...\{32398CCC-C644-487E-B22B-58AE0BE0C7AE}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Common (HKLM-x32\...\{796CC87C-5679-49D6-9054-FC56B9232A9A}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Connect (HKLM-x32\...\{4454CFA8-C64D-4E4A-A085-18B16E0B8BB9}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Custom Data (HKLM-x32\...\{9D72E2C7-CD9C-455C-A0DB-B4D3F7B5B9B1}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - CZ (HKLM-x32\...\{FD293F31-2661-4721-BF74-6375EA0CC693}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - DrawHome (HKLM-x32\...\{D1444571-9830-4967-A029-903551A49894}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - EN (HKLM-x32\...\{14F44A6C-3096-4C3F-9039-20741B443EC9}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - ES (HKLM-x32\...\{448BF8BB-3961-4A6F-80E3-B65B218DFC47}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Filters (HKLM-x32\...\{289F11C5-B482-42B6-8CA8-FF7502E34A52}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - FR (HKLM-x32\...\{A850C65E-8029-4BBD-9DF8-2A178C51C4EB}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - IPM (HKLM-x32\...\{C4DF8B81-6925-4D29-8204-933667E127B4}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - IPM Content (HKLM-x32\...\{0EC6F0EB-64A9-4A69-B8A2-7CB0779CA7A0}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - IT (HKLM-x32\...\{C64347EA-C44C-4A4D-81BC-19EBDD6E8743}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - NL (HKLM-x32\...\{42FCF1AB-3A84-4AAE-9B0D-8550A803F8F1}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - PL (HKLM-x32\...\{490919E0-2440-4362-BA75-D6350F7A1AEF}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - PPHome (HKLM-x32\...\{04BBF42B-CCEC-44C6-8DE1-9B3F3ECB6181}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Redist (HKLM-x32\...\{F6B3E5CE-2DCD-4663-9A21-B00872AE17D9}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - RU (HKLM-x32\...\{A1F3007B-B716-40C4-9F3C-C81A77926EDE}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Setup Files (HKLM-x32\...\{3F0816AB-BA66-4B2F-933A-B533EFBC0098}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - VBA (HKLM-x32\...\{6268A84D-604F-4085-ADB1-634FCE8BA965}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - VideoBrowser (HKLM-x32\...\{A5E75F35-0DFB-4F1F-BB1E-C8B2B2F3B4BA}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Writing Tools (HKLM-x32\...\{7135E09C-980F-4373-B211-04B05C996113}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 (HKLM-x32\...\_{3F0816AB-BA66-4B2F-933A-B533EFBC0098}) (Version: 18.1.0.690 - Corel Corporation)
CorelDRAW Home & Student Suite X8 (HKLM-x32\...\{05718EEC-DE09-454E-9D62-3152254742F1}) (Version: 18.1 - Corel Corporation) Hidden
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Fotogalerie (HKLM-x32\...\{F37D360D-9308-4BB1-8515-DC6B637B9486}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fritz 8 (HKLM-x32\...\{0830FBE8-A848-4A37-BF62-D89CB3EF0F60}) (Version: - )
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 74.0.3729.169 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1068 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6373 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{df682aff-4294-4ad1-aaa7-276931d5781f}) (Version: 1.49.166.0 - Intel Corporation) Hidden
IPM_Common_x86 (HKLM-x32\...\{EE61B6C5-F017-4505-85D3-6D40B1797D32}) (Version: 2.10.442 - Your Company Name) Hidden
Lenovo Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.82.00.18 - Lenovo)
Lenovo App Explorer (HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Host App Service) (Version: 0.273.3.214 - SweetLabs for Lenovo) <==== ATTENTION
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\OneDriveSetup.exe) (Version: 19.070.0410.0005 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2015 (HKLM-x32\...\{dd8b09df-3ef8-49f1-bd1a-65278435860b}) (Version: 14.0.23217 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{3D2CF65C-B544-4308-B996-700D3E5F6C4C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
OKI ActKey (HKLM-x32\...\InstallShield_{681B82EF-A457-4849-AABC-5B6099380FA5}) (Version: 1.7.1.0 - Oki Data Corporation)
OKI Color Swatch Utility (HKLM-x32\...\{A344F95E-E51A-450C-8F84-C940BF61903E}) (Version: 2.1.12 - Okidata)
OKI LPR Utility (HKLM-x32\...\{465914BD-324C-4442-A9F6-E9347AB38EB8}) (Version: 5.1.0 - Okidata)
OKI MC5(3)x2/ES5(3)4x2 Scanner (HKLM-x32\...\InstallShield_{14915907-DB64-49DC-BB9D-1935D38CD250}) (Version: 1.0.2.0 - Oki Data Corporation)
OKI PDF Print Direct (HKLM-x32\...\{2CA86624-3491-4B2D-B64E-01D2D25AA732}) (Version: 3.4.8 - Okidata)
ScannerDriver (HKLM\...\{14915907-DB64-49DC-BB9D-1935D38CD250}) (Version: 1.0.2.0 - Oki Data Corporation) Hidden
Seznam Software (HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\SeznamInstall) (Version: 2.1.32 - Seznam.cz)
SMPlayer 19.1.0 (HKLM-x32\...\SMPlayer) (Version: 19.1.0 - Ricardo Villalba)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22 - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)

Packages:
=========
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.13.5.0_x86__kgqvnymyfvs32 [2019-05-17] (king.com)
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1510.1.0_x86__kgqvnymyfvs32 [2019-05-20] (king.com)
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_4.0.0.1_x86__m9bz608c1b9ra [2019-03-20] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.520.0_x64__rz1tebttyb220 [2019-03-15] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2019-03-15] (Fitbit)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_4.27.32.0_x86__k1h2ywk1493x8 [2019-03-26] (LENOVO INC.)
LenovoUtility -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.0.52.0_x64__5grkq8ppsgwt4 [2019-04-17] (LENOVO INC)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2019-03-13] (LinkedIn)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.9.0_x64__nfy108tqq3p12 [2019-03-15] (Thumbmunkeys Ltd)
Power2Go for Lenovo -> C:\Program Files\WindowsApps\CyberLinkCorp.th.Power2GoforLenovo_8.0.9516.0_x86__m916jedk64snt [2019-03-13] (CYBERLINKCOM CORPORATION)
PowerDVD for Lenovo -> C:\Program Files\WindowsApps\CyberLinkCorp.th.PowerDVDforLenovo_14.1.9528.0_x86__m916jedk64snt [2019-03-13] (CYBERLINKCOM CORPORATION)
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.12831.0_x64__8wekyb3d8bbwe [2019-03-13] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [PDF Print Direct] -> {C15F7681-33D8-11D3-A09B-00500402F30B} => C:\Windows\System32\OkDrtPrn.dll [2012-05-28] (Oki Data Corporation) [File not signed]
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\igfxDTCM.dll [2018-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-10] (AVAST Software s.r.o. -> AVAST Software)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-11-29 00:13 - 2016-04-29 07:57 - 000132096 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SAII\CxUtilSvc.exe
2011-08-23 15:33 - 2011-08-23 15:33 - 000163840 _____ (Oki Data Corporation) [File not signed] C:\Program Files (x86)\Okidata\ActKey\NCRes.dll
2010-01-22 18:22 - 2010-01-22 18:22 - 000032768 _____ (Oki Data Corporation) [File not signed] C:\Program Files (x86)\Okidata\ActKey\Scanner Assist\OPCOMAPI.dll
2011-08-19 14:15 - 2011-08-19 14:15 - 000188416 _____ (Oki Data Corporation) [File not signed] C:\Program Files (x86)\Okidata\ActKey\Scanner Assist\Scanner Assist.dll
2019-03-30 15:21 - 2010-04-21 15:04 - 000167424 ____N (Oki Data Corporation) [File not signed] C:\Program Files\Okidata\Common\opnetdsc.dll
2019-03-30 15:21 - 2012-05-28 09:54 - 000265216 ____N (Oki Data Corporation) [File not signed] C:\Windows\System32\OkDrtPrn.dll
2019-03-30 15:21 - 2011-04-12 19:05 - 000029696 ____N (Oki Data Corporation) [File not signed] C:\Windows\System32\oklprmon.dll
2019-03-30 15:21 - 2012-11-21 19:59 - 000033280 _____ (Oki Data Corporation) [File not signed] C:\Windows\SYSTEM32\oklprrsc.dll
2019-03-16 12:53 - 2018-08-12 21:29 - 001255424 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Filip\Desktop\chomutov_1920x1080.jpg
DNS Servers: 10.255.255.10 - 10.255.255.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2836F156-0C18-4A64-9297-5B438B1ACFE6}] => (Block) c:\Program Files (x86)\Corel\CorelDRAW Home & Student Suite X8\Programs\DrawHome.exe (Corel Corporation -> Corel Corporation)
FirewallRules: [{D340C275-19CC-4A62-8886-9553AA2A48F6}] => (Block) c:\Program Files (x86)\Corel\CorelDRAW Home & Student Suite X8\Programs\PPHome.exe (Corel Corporation -> Corel Corporation)
FirewallRules: [{08B88E32-3124-418B-A0BD-209A3E0EC850}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7ABAD88C-C188-4E1B-ABD9-38486F908D26}] => (Allow) LPort=2869
FirewallRules: [{A7806D7F-F3E2-4234-9746-7E0F5E925AB1}] => (Allow) LPort=1900
FirewallRules: [{B6183BC5-DA39-48EB-86C0-848EB1F7C1B6}] => (Allow) C:\Program Files (x86)\Okidata\ActKey\Network Configuration.exe (Oki Data Corporation -> Oki Data Corporation)
FirewallRules: [{9BC32188-C56A-4B45-A07E-413C5B1277EB}] => (Allow) C:\Program Files (x86)\Okidata\ActKey\Network Configuration.exe (Oki Data Corporation -> Oki Data Corporation)
FirewallRules: [{D556D659-D978-4136-B101-37E0126423EE}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (AVAST Software s.r.o. -> AVAST Software)
FirewallRules: [{38479697-4EFC-4432-B22F-CB8FE6A76350}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [{72BCF4CE-8ABE-42DE-BC6D-67EFD3F856D7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.11601.20230.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/25/2019 10:37:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: rundll32.exe, verze: 10.0.17134.1, časové razítko: 0xe814db7d
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000a0430
ID chybujícího procesu: 0x8d3c
Čas spuštění chybující aplikace: 0x01d4fba6a6879754
Cesta k chybující aplikaci: C:\Windows\System32\rundll32.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 208b322a-9e3c-4540-a326-b29e27804142
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/16/2019 10:15:53 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.17134.706 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 3250

Čas spuštění: 01d4f4911cfe791a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe

ID hlášení: c3162e1a-40bc-49f9-b8ed-8937cf966c53

Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy

ID aplikace související s balíčkem s chybou: CortanaUI

Error: (04/14/2019 02:37:05 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-KRDM9FQ3)
Description: httphttp-2147467263

Error: (04/09/2019 09:38:49 PM) (Source: Perflib) (EventID: 1017) (User: )
Description: Sběr dat čítače výkonu od služby Outlook byl vypnut z důvodu jedné nebo více chyb generovaných knihovnou čítače výkonu pro tuto službu. Chyby, které vyvolaly tuto akci, byly zapsány do protokolu událostí aplikace. Opravte tyto chyby před novým zapnutím čítačů výkonu pro tuto službu.

Error: (04/09/2019 09:38:49 PM) (Source: Perflib) (EventID: 1021) (User: )
Description: Systém Windows nemůže otevřít 32bitovou knihovnu DLL rozšiřitelných čítačů Outlook v 64bitovém prostředí. Vyžádejte si od prodejce souboru 64bitovou verzi, popřípadě můžete 32bitovou knihovnu DLL rozšiřujících čítačů otevřít pomocí 32bitové verze nástroje Sledování výkonu. Jestliže chcete použít tento nástroj, otevřete složku systému Windows, otevřete složku Syswow64 a spusťte program Perfmon.exe.

Error: (04/06/2019 11:23:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.556, časové razítko: 0xf23cada5
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007c686
ID chybujícího procesu: 0x6c4
Čas spuštění chybující aplikace: 0x01d4ec55ce4b56fb
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: dcf30626-68e5-460d-8935-b6ed8e12e593
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/06/2019 10:39:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.556, časové razítko: 0xf23cada5
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007c686
ID chybujícího procesu: 0x3f5c
Čas spuštění chybující aplikace: 0x01d4ec516acb1703
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: bd0eb2f0-6b95-4dfa-a2a8-7d692e98f8b5
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/06/2019 10:08:13 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.556, časové razítko: 0xf23cada5
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007c686
ID chybujícího procesu: 0x21e0
Čas spuštění chybující aplikace: 0x01d4ec4d3a40dcf8
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: 3c164e3d-4752-433f-b5ec-5c4f58b25e36
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (05/28/2019 08:12:10 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 06:14:47 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 05:14:45 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 04:14:47 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 03:53:53 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 03:43:54 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 03:42:06 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/28/2019 03:39:09 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


CodeIntegrity:
===================================

Date: 2019-03-31 21:49:44.261
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-30 12:09:11.529
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-27 22:16:26.729
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-26 21:15:38.120
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-25 15:57:01.792
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-20 19:53:17.841
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-18 22:02:09.452
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-13 15:39:48.180
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Common Files\mcafee\SystemCore\mfemms.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\mcafee\SystemCore\mfeaaca.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Memory info ===========================

BIOS: LENOVO 6SCN41WW 12/19/2018
Motherboard: LENOVO LNVNB161216
Processor: Intel(R) Core(TM) i5-8250U CPU @ 1.60GHz
Percentage of memory in use: 55%
Total physical RAM: 7613.43 MB
Available physical RAM: 3413.23 MB
Total Virtual: 8893.43 MB
Available Virtual: 4347.8 MB

==================== Drives ================================

Drive c: (Windows-SSD) (Fixed) (Total:118 GB) (Free:80.25 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.5 GB) (Free:160.08 GB) NTFS

\\?\Volume{06ae05ca-f5ac-44c3-8fcb-05a3b728dc94}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.57 GB) NTFS
\\?\Volume{b1a6e7c9-a952-4104-9474-15cad919f268}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 28A5D9BC)

Partition: GPT.

========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: F5425621)

Partition: GPT.

==================== End of Addition.txt ============================

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-05.2019
Ran by Filip (administrator) on LAPTOP-KRDM9FQ3 (LENOVO 81AX) (28-05-2019 20:15:59)
Running from C:\Users\Filip\Desktop
Loaded Profiles: Filip (Available Profiles: Filip)
Platform: Windows 10 Home (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.1000_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\ApMsgFwd.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\ApntEx.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\Apoint.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\ApRemote.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\HidMonitorSvc.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler64.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(Conexant Systems, Inc.) [File not signed] C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(Fortemedia Inc -> ) C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\IntelCpHeciSvc.exe
(Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_10d045798a3d667e\aesm_service.exe
(Intel(R) Trust Services -> Intel(R) Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.0.52.0_x64__5grkq8ppsgwt4\VFS\ProgramFilesX64\Lenovo\LenovoUtility\utility.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.1000_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Oki Data Corporation -> ) C:\Program Files\Okidata\OKI LPR Utility\okilpr.exe
(Oki Data Corporation -> Oki Data Corporation) C:\Program Files (x86)\Okidata\ActKey\Network Configuration.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek semiconductor) C:\Windows\RTFTrack.exe
(SweetLabs Inc. -> SweetLabs, Inc) C:\Users\Filip\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\WINDOWS DEFENDER\MSASCUIL.EXE [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\PROGRAM FILES\CONEXANT\CAUDIOFILTERAGENT\CAUDIOFILTERAGENT64.EXE [603992 2017-06-24] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\PROGRAM FILES\CONEXANT\FORTECONFIG\FMAPP.EXE [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [SmartAudio] => /DELAY:45
HKLM\...\Run: [Network Configuration] => C:\PROGRAM FILES (X86)\OKIDATA\ACTKEY\NETWORK CONFIGURATION.EXE [725280 2012-08-27] (Oki Data Corporation -> Oki Data Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [261000 2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1069296 2018-03-27] (Seznam.cz, a.s. -> )
HKLM-x32\...\Winlogon: [Userinit]
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Run: [AvastBrowserAutoLaunch_A8AA2AE63066897F290B137CDE2B196A] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1952880 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22588760 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-21] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\73.0.1270.87\Installer\chrmstp.exe [2019-04-17] (AVAST Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\OKI LPR Utility.lnk [2019-03-30]
ShortcutTarget: OKI LPR Utility.lnk -> C:\Program Files\Okidata\OKI LPR Utility\okilpr.exe (Oki Data Corporation -> )
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {04564094-DDFB-439D-94EE-914FF43FB0EC} - System32\Tasks\App Explorer => C:\Users\Filip\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7448744 2019-03-07] (SweetLabs Inc. -> SweetLabs, Inc) <==== ATTENTION
Task: {1E8C7B41-BA0A-40AF-8CF3-4CC1133DD9F6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16571320 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {29CCDAFF-B9DB-4C7D-981A-E4F2D0AD5E3D} - System32\Tasks\RtsCM => C:\Windows\RtsCM64.exe [225216 2018-02-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
Task: {4688A714-0AF1-455E-9128-FF3E6AECC7D4} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {50D298D4-D0F0-4C94-929F-8F04A8BE4CB6} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\23e60572-af02-49ee-9d38-16a6354d3abd => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {6A9FEDB5-678F-43A3-B672-AF7885229CCA} - System32\Tasks\CorelUpdateHelperTaskCore => C:\Program Files (x86)\Corel\CUH\v2\CUH.exe [1662200 2019-02-27] (Corel Corporation -> Corel Corporation)
Task: {70D1A26F-166E-4103-BE5D-E7F237724F4F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {78CA8D6E-9C6A-4C20-8FE0-60C0B109F1A3} - System32\Tasks\LenovoUtility Task => C:\Windows\explorer.exe lenovo-utility://
Task: {811D2AD3-F440-4ABD-847B-31E803C53C6A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2380088 2019-04-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {8E69A78A-DAD8-48B2-AE9C-A9994B26B2CC} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {9C5CD607-B9F2-4155-BF78-36300C53F75E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-25] (Google Inc -> Google LLC)
Task: {A00765E5-4DDF-4252-8551-5C17D47D70F5} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {A555581B-C9C1-4CE9-AF93-6A52825732FA} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\65bc9f30-17a4-4543-9803-51222c31105c => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {A5EEF4E5-AB98-4499-95F7-FD943DA15339} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\eded1ccf-fcef-47a2-a089-4bc76d003e48 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {A9F2F132-0008-4B0D-B68B-11246A0A0FC9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {AB89E52B-0DA2-4521-94AF-DF1F1EFBDC15} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {CDC98D23-9C74-4099-B860-1B41B6FBFF17} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-25] (Google Inc -> Google LLC)
Task: {D222C6EC-18EC-409C-8721-A0E9926A8D8F} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
Task: {E1D1F9AE-E813-4C90-AD6B-FACBA30220BE} - System32\Tasks\RTFTrack => C:\Windows\RTFTrack.exe [5462984 2018-02-06] (Realtek Semiconductor Corp. -> Realtek semiconductor)
Task: {E67323CC-28B6-4AF6-A6AA-66B559BE9AA1} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [54440 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {E7AA31DA-97D9-44E5-81E1-A81E1924364C} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1952880 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)
Task: {EEA7A3FC-FC54-4C70-82A5-23AA6D0810F8} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1952880 2019-04-11] (AVAST Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.255.255.10 10.255.255.20
Tcpip\..\Interfaces\{afd7acdf-4d55-4f72-a87c-54f2f81f77f2}: [DhcpNameServer] 172.168.137.2
Tcpip\..\Interfaces\{dd0745eb-901b-4387-bd5a-174c3f643650}: [DhcpNameServer] 10.255.255.10 10.255.255.20

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.centrum.cz/
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default [2019-05-28]
CHR Extension: (Prezentace) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-18]
CHR Extension: (Dokumenty) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-18]
CHR Extension: (Disk Google) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-18]
CHR Extension: (YouTube) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-18]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-04-25]
CHR Extension: (Tabulky) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-18]
CHR Extension: (Avast Online Security) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-04-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-03-18]
CHR Extension: (Gmail) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-23]
CHR HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESMService; C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_10d045798a3d667e\aesm_service.exe [3367272 2018-11-28] (Intel(R) Software Development Products -> Intel Corporation)
R2 ApHidMonitorService; C:\Windows\system32\Alps\GlidePoint\HidMonitorSvc.exe [345456 2018-06-13] (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6660888 2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [362488 2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-04-10] (AVAST Software s.r.o. -> AVAST Software)
R2 CxUtilSvc; C:\Program Files\Conexant\SAII\CxUtilSvc.exe [132096 2016-04-29] (Conexant Systems, Inc.) [File not signed]
R2 esifsvc; C:\Windows\System32\Intel\DPTF\esif_uf.exe [1705040 2017-11-08] (Intel Corporation -> Intel Corporation)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
R3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [758552 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [719640 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 McSecDashboardService; C:\Program Files\McAfeeDashboard\McSecDashboardService.exe [1270536 2019-02-26] (McAfee, Inc. -> McAfee, Inc.)
R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
R2 SAService; C:\Windows\system32\SAsrv.exe [416576 2016-10-28] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4413440 2019-03-14] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107160 2019-02-16] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ApHidfiltrService; C:\Windows\System32\drivers\ApHidFiltr.sys [292768 2018-06-13] (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [207448 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [262496 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279120 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167872 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [477584 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [225096 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [385640 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [69536 2017-11-08] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\Windows\System32\drivers\esif_lf.sys [382880 2017-11-08] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [98968 2017-10-15] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R0 iaStorAC; C:\Windows\System32\drivers\iaStorAC.sys [1094792 2018-12-06] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [198208 2018-03-29] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [8614464 2018-03-21] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1010624 2017-12-21] (Realtek Semiconductor Corp. -> Realtek )
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [421312 2017-12-19] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3236808 2018-02-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-28 20:15 - 2019-05-28 20:16 - 000026988 ____C C:\Users\Filip\Desktop\FRST.txt
2019-05-28 20:15 - 2019-05-28 20:15 - 000000000 ____D C:\FRST
2019-05-28 20:14 - 2019-05-28 20:14 - 002435584 _____ (Farbar) C:\Users\Filip\Desktop\FRST64.exe
2019-05-28 20:11 - 2019-05-28 20:11 - 000000874 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-05-28 20:10 - 2019-05-28 20:10 - 021315608 _____ (Piriform Software Ltd) C:\Users\Filip\Downloads\ccsetup557.exe
2019-05-27 19:41 - 2019-05-27 19:41 - 000363400 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-05-27 15:52 - 2019-05-27 15:52 - 000022016 ____C C:\Users\Filip\Desktop\chatky.xls
2019-05-22 21:33 - 2019-02-13 07:47 - 001909560 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2019-05-15 21:57 - 2019-05-03 08:33 - 005625152 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-05-15 21:57 - 2019-05-03 08:31 - 009084432 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-05-15 21:57 - 2019-05-03 08:31 - 007519888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-05-15 21:57 - 2019-05-03 08:31 - 007436536 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-05-15 21:57 - 2019-05-03 08:18 - 006569344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-15 21:57 - 2019-05-03 08:12 - 025855488 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-05-15 21:57 - 2019-05-03 08:10 - 022017024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-05-15 21:57 - 2019-05-03 08:05 - 022716416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-05-15 21:57 - 2019-05-03 08:02 - 019401216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-05-15 21:57 - 2019-05-03 08:01 - 008189440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-05-15 21:57 - 2019-05-03 07:59 - 007593472 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-05-15 21:57 - 2019-05-03 07:59 - 005788672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-05-15 21:57 - 2019-05-03 07:56 - 005350912 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-05-15 21:57 - 2019-05-03 07:54 - 004929024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-05-15 21:57 - 2019-04-19 12:39 - 012754944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-05-15 21:56 - 2019-05-03 14:14 - 000790208 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-05-15 21:56 - 2019-05-03 14:13 - 001376472 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-05-15 21:56 - 2019-05-03 14:13 - 000396088 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2019-05-15 21:56 - 2019-05-03 13:55 - 000123392 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-05-15 21:56 - 2019-05-03 13:54 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-05-15 21:56 - 2019-05-03 13:52 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-05-15 21:56 - 2019-05-03 13:51 - 003613696 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-05-15 21:56 - 2019-05-03 13:51 - 001364992 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-05-15 21:56 - 2019-05-03 13:50 - 004054528 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-05-15 21:56 - 2019-05-03 13:50 - 001663488 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-05-15 21:56 - 2019-05-03 13:49 - 001288704 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-05-15 21:56 - 2019-05-03 13:49 - 000488448 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-05-15 21:56 - 2019-05-03 13:49 - 000210944 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-05-15 21:56 - 2019-05-03 13:43 - 001027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-05-15 21:56 - 2019-05-03 13:43 - 000662328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-05-15 21:56 - 2019-05-03 13:30 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-05-15 21:56 - 2019-05-03 13:30 - 000098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-05-15 21:56 - 2019-05-03 13:28 - 002882048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-05-15 21:56 - 2019-05-03 13:28 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2019-05-15 21:56 - 2019-05-03 13:27 - 000176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-05-15 21:56 - 2019-05-03 13:26 - 000425472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-05-15 21:56 - 2019-05-03 13:25 - 004055040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-05-15 21:56 - 2019-05-03 13:25 - 001471488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-05-15 21:56 - 2019-05-03 08:43 - 000177128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2019-05-15 21:56 - 2019-05-03 08:36 - 001035256 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-05-15 21:56 - 2019-05-03 08:34 - 000159864 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 001219896 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 001027384 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 000709720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-05-15 21:56 - 2019-05-03 08:33 - 000568104 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-05-15 21:56 - 2019-05-03 08:33 - 000076088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-05-15 21:56 - 2019-05-03 08:33 - 000063072 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2019-05-15 21:56 - 2019-05-03 08:32 - 000793640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2019-05-15 21:56 - 2019-05-03 08:32 - 000776784 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-05-15 21:56 - 2019-05-03 08:32 - 000493880 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-05-15 21:56 - 2019-05-03 08:32 - 000438984 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-05-15 21:56 - 2019-05-03 08:32 - 000209208 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-05-15 21:56 - 2019-05-03 08:32 - 000170296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-05-15 21:56 - 2019-05-03 08:32 - 000164664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2019-05-15 21:56 - 2019-05-03 08:31 - 002811192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-05-15 21:56 - 2019-05-03 08:31 - 002771256 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-05-15 21:56 - 2019-05-03 08:31 - 001459328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-05-15 21:56 - 2019-05-03 08:31 - 001260480 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-05-15 21:56 - 2019-05-03 08:31 - 001141224 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-05-15 21:56 - 2019-05-03 08:31 - 001098064 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-05-15 21:56 - 2019-05-03 08:31 - 000983632 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-05-15 21:56 - 2019-05-03 08:31 - 000545808 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-05-15 21:56 - 2019-05-03 08:31 - 000412984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-05-15 21:56 - 2019-05-03 08:31 - 000115728 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-05-15 21:56 - 2019-05-03 08:20 - 000434704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-05-15 21:56 - 2019-05-03 08:20 - 000384976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-05-15 21:56 - 2019-05-03 08:20 - 000192016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-05-15 21:56 - 2019-05-03 08:20 - 000146920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2019-05-15 21:56 - 2019-05-03 08:19 - 006043712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-05-15 21:56 - 2019-05-03 08:19 - 000665224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-05-15 21:56 - 2019-05-03 08:19 - 000056288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2019-05-15 21:56 - 2019-05-03 08:18 - 002258640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-05-15 21:56 - 2019-05-03 08:18 - 001130568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-05-15 21:56 - 2019-05-03 08:02 - 004866048 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 006661632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 003400192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 000120832 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 003710976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 001307648 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 000514560 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-05-15 21:56 - 2019-05-03 07:59 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 000204288 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 002175488 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 001361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 000462336 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-05-15 21:56 - 2019-05-03 07:58 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-05-15 21:56 - 2019-05-03 07:57 - 001826816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 001560576 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 001295872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 000808448 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 000608768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 000561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 001803776 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 000773632 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 000333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-05-15 21:56 - 2019-05-03 07:55 - 003090432 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-05-15 21:56 - 2019-05-03 07:55 - 002166784 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-05-15 21:56 - 2019-05-03 07:55 - 000659968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 001628672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-05-15 21:56 - 2019-05-03 07:54 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000845824 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000778752 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2019-05-15 21:56 - 2019-05-03 07:54 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000535552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2019-05-15 21:56 - 2019-05-03 07:53 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-05-15 21:56 - 2019-05-03 07:53 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-05-15 21:56 - 2019-05-03 07:53 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-05-15 21:56 - 2019-05-03 07:53 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-05-15 21:56 - 2019-05-03 06:38 - 000001310 _____ C:\Windows\system32\tcbres.wim
2019-05-15 21:56 - 2019-04-23 09:13 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MixedRealityCapture.dll
2019-05-15 21:56 - 2019-04-23 08:14 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-05-15 21:56 - 2019-04-19 12:55 - 001634920 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-05-15 21:56 - 2019-04-19 12:54 - 000720200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-05-15 21:56 - 2019-04-19 12:40 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-05-15 21:56 - 2019-04-19 12:38 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\RDSPnf.exe
2019-05-15 21:56 - 2019-04-19 12:38 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2019-05-15 21:56 - 2019-04-19 12:36 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2019-05-15 21:56 - 2019-04-19 12:34 - 000522240 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2019-05-15 21:56 - 2019-04-19 11:44 - 001454648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-05-15 21:56 - 2019-04-19 11:37 - 000607960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-05-15 21:56 - 2019-04-19 11:30 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll
2019-05-15 21:56 - 2019-04-19 11:28 - 011940864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-05-15 21:56 - 2019-04-19 11:26 - 002405888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2019-05-15 21:56 - 2019-04-19 11:25 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2019-05-15 21:56 - 2019-04-19 07:07 - 000985400 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2019-05-15 21:56 - 2019-04-19 07:06 - 002571632 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000798520 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000713264 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000436024 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000274232 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2019-05-15 21:56 - 2019-04-19 07:02 - 000831800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2019-05-15 21:56 - 2019-04-19 07:01 - 001982008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-05-15 21:56 - 2019-04-19 07:01 - 000581592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2019-05-15 21:56 - 2019-04-19 07:01 - 000576016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2019-05-15 21:56 - 2019-04-19 07:01 - 000380728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-05-15 21:56 - 2019-04-19 06:43 - 000150016 _____ (Microsoft Corporation) C:\Windows\system32\fcon.dll
2019-05-15 21:56 - 2019-04-19 06:42 - 004384256 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-05-15 21:56 - 2019-04-19 06:41 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2019-05-15 21:56 - 2019-04-19 06:41 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\EduPrintProv.exe
2019-05-15 21:56 - 2019-04-19 06:40 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
2019-05-15 21:56 - 2019-04-19 06:40 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll
2019-05-15 21:56 - 2019-04-19 06:40 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enrollmentapi.dll
2019-05-15 21:56 - 2019-04-19 06:40 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll
2019-05-15 21:56 - 2019-04-19 06:40 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetDriverInstall.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 005307392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000567296 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000425472 _____ (Microsoft Corporation) C:\Windows\system32\SDDS.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\BingASDS.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2019-05-15 21:56 - 2019-04-19 06:39 - 000204288 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 002368512 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000593408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000300544 _____ (Microsoft Corporation) C:\Windows\system32\dmenterprisediagnostics.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000953856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000445952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000397312 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 002909696 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 001300992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000827392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000814592 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000546816 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001938944 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001458688 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001175552 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001156608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000784896 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000607232 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000523776 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000935936 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000899584 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000885760 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 05:18 - 000806360 _____ C:\Windows\SysWOW64\locale.nls
2019-05-15 21:56 - 2019-04-19 05:18 - 000806360 _____ C:\Windows\system32\locale.nls
2019-05-15 21:56 - 2019-04-09 03:48 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000376320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000205992 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.Modern.CoreTypes.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000130728 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.Modern.Utilities.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000097448 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.Modern.ImController.ImClient.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000043688 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.ImController.EventLogging.dll
2019-04-29 21:30 - 2019-04-29 21:30 - 031687968 _____ C:\Users\Filip\Downloads\XnView-win-full.exe
2019-04-28 17:40 - 2019-04-28 17:46 - 100571962 _____ C:\Users\Filip\Downloads\TB English File Intermediate Plus.pdf

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-28 20:11 - 2019-03-30 14:31 - 000003936 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-05-28 20:11 - 2018-04-12 01:36 - 000000000 ____D C:\Windows\INF
2019-05-28 20:09 - 2019-03-13 23:18 - 000000000 ____D C:\Users\Filip\.smplayer
2019-05-28 19:39 - 2019-04-25 15:32 - 000003400 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-28 19:39 - 2019-04-25 15:32 - 000003176 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-28 19:39 - 2019-03-30 14:31 - 000002238 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-05-28 19:39 - 2019-03-20 20:13 - 000003482 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-05-28 19:39 - 2019-03-18 23:57 - 000002598 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore
2019-05-28 19:39 - 2019-03-14 06:49 - 000002862 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3054716200-2897486703-4280449553-1001
2019-05-28 19:39 - 2018-11-29 00:18 - 000003492 _____ C:\Windows\System32\Tasks\LenovoUtility Task
2019-05-28 19:39 - 2018-11-29 00:18 - 000002408 _____ C:\Windows\System32\Tasks\App Explorer
2019-05-28 19:39 - 2018-11-29 00:15 - 000002024 _____ C:\Windows\System32\Tasks\RTFTrack
2019-05-28 19:39 - 2018-11-29 00:15 - 000002016 _____ C:\Windows\System32\Tasks\RtsCM
2019-05-28 19:39 - 2018-04-17 21:03 - 000002770 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2
2019-05-28 19:38 - 2019-03-18 18:15 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-05-28 15:54 - 2018-04-17 21:01 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-05-28 15:54 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-28 15:41 - 2019-03-14 03:51 - 000000000 ___DC C:\Users\Filip\AppData\Local\Host App Service
2019-05-28 15:38 - 2019-03-14 03:55 - 000000000 __SHD C:\Users\Filip\IntelGraphicsProfiles
2019-05-28 06:05 - 2019-04-26 19:46 - 000011299 _____ C:\Users\Filip\Desktop\mamka_narozky.xlsx
2019-05-27 19:41 - 2019-03-18 18:15 - 001030784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000477584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000385640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000279120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000262496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000225096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000207448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000205848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000167872 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000061472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-05-27 19:41 - 2018-04-12 01:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-05-27 15:38 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\AppReadiness
2019-05-26 22:07 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-24 17:43 - 2019-03-14 03:57 - 000000000 ___RD C:\Users\Filip\OneDrive
2019-05-24 17:43 - 2019-03-14 03:51 - 000002376 ____C C:\Users\Filip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-23 05:55 - 2018-11-29 00:52 - 000683294 _____ C:\Windows\system32\perfh005.dat
2019-05-23 05:55 - 2018-11-29 00:52 - 000137174 _____ C:\Windows\system32\perfc005.dat
2019-05-23 05:55 - 2018-04-17 21:07 - 001601516 _____ C:\Windows\system32\PerfStringBackup.INI
2019-05-23 05:51 - 2018-04-17 21:02 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-05-22 22:13 - 2018-04-11 23:04 - 000524288 _____ C:\Windows\system32\config\BBI
2019-05-22 21:54 - 2018-04-12 01:30 - 000000000 ____D C:\Windows\CbsTemp
2019-05-22 21:36 - 2018-11-29 00:12 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2019-05-22 21:36 - 2018-11-29 00:11 - 000000000 ____D C:\Program Files\Intel
2019-05-22 21:36 - 2018-11-29 00:11 - 000000000 ____D C:\Program Files (x86)\Intel
2019-05-21 21:22 - 2019-04-25 15:33 - 000002312 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-05-21 21:22 - 2019-04-25 15:33 - 000002271 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-05-19 19:22 - 2019-03-14 03:55 - 000000000 ___DC C:\Users\Filip\AppData\Local\Packages
2019-05-17 15:40 - 2019-03-31 22:27 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-05-17 13:06 - 2019-03-13 23:15 - 000000000 ____D C:\Program Files\rempl
2019-05-16 17:55 - 2018-04-17 21:01 - 000501264 _____ C:\Windows\system32\FNTCACHE.DAT
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\TextInput
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\ShellExperiences
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\bcastdvr
2019-05-15 21:57 - 2019-03-13 23:32 - 000000000 ____D C:\Windows\system32\MRT
2019-05-15 21:55 - 2019-03-13 23:32 - 132445408 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-05-10 05:50 - 2019-03-14 03:51 - 000000000 ____D C:\Users\Filip
2019-05-08 21:21 - 2018-11-29 00:18 - 000000000 ____D C:\ProgramData\McAfee
2019-05-04 01:53 - 2018-04-12 01:41 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-05-04 01:53 - 2018-04-12 01:41 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-05-01 20:31 - 2019-03-25 19:47 - 000000000 ___DC C:\Users\Filip\AppData\Local\Windows Live
2019-04-28 17:50 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\system32\FxsTmp
2019-04-28 16:19 - 2019-03-18 22:16 - 000000000 ___DC C:\Users\Filip\AppData\Local\CrashDumps

==================== Files in the root of some directories =======

2019-03-31 22:26 - 2019-03-31 22:27 - 050916512 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ (1).exe
2019-03-30 14:34 - 2019-03-30 14:34 - 038624400 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ.exe
2019-03-30 14:30 - 2019-03-30 14:31 - 021205512 _____ (Piriform Software Ltd) C:\Users\Filip\ccsetup555.exe
2019-04-25 15:27 - 2019-04-25 15:27 - 001214008 _____ (Google LLC) C:\Users\Filip\ChromeSetup.exe

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Ak nepouzivas, odporucam odinstalovat Seznam Software (Seznam Listicka).

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Filis
Návštěvník
Návštěvník
Příspěvky: 205
Registrován: 21 čer 2005 11:18

Re: Prosím o preventivku

#3 Příspěvek od Filis »

# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-05-27.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 05-28-2019
# Duration: 00:00:01
# OS: Windows 10 Home
# Cleaned: 14
# Failed: 1


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files (x86)\Seznam.cz
Deleted C:\Users\Filip\AppData\Roaming\Seznam.cz
Not Deleted C:\Users\Filip\AppData\Local\Host App Service

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

Deleted C:\Windows\System32\Tasks\APP EXPLORER

***** [ Registry ] *****

Deleted HKCU\Software\App Host Service
Deleted HKCU\Software\Host App Service
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
Deleted HKCU\Software\Seznam.cz
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04564094-DDFB-439D-94EE-914FF43FB0EC}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce

***** [ Chromium (and derivatives) ] *****

Deleted Seznam doplněk - Email
Deleted Seznam doplněk - Esko

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [2497 octets] - [28/05/2019 20:46:28]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#4 Příspěvek od Conder »

:arrow: Poprosim o obidva nove logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Filis
Návštěvník
Návštěvník
Příspěvky: 205
Registrován: 21 čer 2005 11:18

Re: Prosím o preventivku

#5 Příspěvek od Filis »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-05.2019
Ran by Filip (29-05-2019 17:06:06)
Running from C:\Users\Filip\Desktop
Windows 10 Home (X64) (2019-03-14 01:44:45)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3054716200-2897486703-4280449553-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3054716200-2897486703-4280449553-503 - Limited - Disabled)
Filip (S-1-5-21-3054716200-2897486703-4280449553-1001 - Administrator - Enabled) => C:\Users\Filip
Guest (S-1-5-21-3054716200-2897486703-4280449553-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3054716200-2897486703-4280449553-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ActKey (HKLM-x32\...\{681B82EF-A457-4849-AABC-5B6099380FA5}) (Version: 1.7.1.0 - Oki Data Corporation) Hidden
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.012.20034 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Akamai) (Version: - Akamai Technologies, Inc)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.5.2378 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 74.0.1376.132 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.154.333 - AVAST Software) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.57 - Piriform)
Conexant Audio Filter Agent (HKLM\...\cAudioFilterAgent) (Version: 1.7.102.0 - Conexant Systems)
Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{DA3BB5D6-55FE-4632-87E3-9E823C67B58B}) (Version: 18.1.0.690 - Corel Corporation)
Corel Graphics - Windows Shell Extension (HKLM-x32\...\{DA3BB5D6-55FE-4632-87E3-9E823C67B58B}) (Version: 18.1.690 - Corel Corporation) Hidden
Corel Graphics - Windows Shell Extension 64 Bit Keys (HKLM\...\{69D1C50E-6E4D-416D-A632-875EB3C5EF8A}) (Version: 18.1.690 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - BR (HKLM-x32\...\{1E6087A4-1715-4B43-9090-A3B1EFD55EF8}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Capture (HKLM-x32\...\{32398CCC-C644-487E-B22B-58AE0BE0C7AE}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Common (HKLM-x32\...\{796CC87C-5679-49D6-9054-FC56B9232A9A}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Connect (HKLM-x32\...\{4454CFA8-C64D-4E4A-A085-18B16E0B8BB9}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Custom Data (HKLM-x32\...\{9D72E2C7-CD9C-455C-A0DB-B4D3F7B5B9B1}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - CZ (HKLM-x32\...\{FD293F31-2661-4721-BF74-6375EA0CC693}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - DrawHome (HKLM-x32\...\{D1444571-9830-4967-A029-903551A49894}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - EN (HKLM-x32\...\{14F44A6C-3096-4C3F-9039-20741B443EC9}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - ES (HKLM-x32\...\{448BF8BB-3961-4A6F-80E3-B65B218DFC47}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Filters (HKLM-x32\...\{289F11C5-B482-42B6-8CA8-FF7502E34A52}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - FR (HKLM-x32\...\{A850C65E-8029-4BBD-9DF8-2A178C51C4EB}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - IPM (HKLM-x32\...\{C4DF8B81-6925-4D29-8204-933667E127B4}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - IPM Content (HKLM-x32\...\{0EC6F0EB-64A9-4A69-B8A2-7CB0779CA7A0}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - IT (HKLM-x32\...\{C64347EA-C44C-4A4D-81BC-19EBDD6E8743}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - NL (HKLM-x32\...\{42FCF1AB-3A84-4AAE-9B0D-8550A803F8F1}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - PL (HKLM-x32\...\{490919E0-2440-4362-BA75-D6350F7A1AEF}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - PPHome (HKLM-x32\...\{04BBF42B-CCEC-44C6-8DE1-9B3F3ECB6181}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Redist (HKLM-x32\...\{F6B3E5CE-2DCD-4663-9A21-B00872AE17D9}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - RU (HKLM-x32\...\{A1F3007B-B716-40C4-9F3C-C81A77926EDE}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Setup Files (HKLM-x32\...\{3F0816AB-BA66-4B2F-933A-B533EFBC0098}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - VBA (HKLM-x32\...\{6268A84D-604F-4085-ADB1-634FCE8BA965}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - VideoBrowser (HKLM-x32\...\{A5E75F35-0DFB-4F1F-BB1E-C8B2B2F3B4BA}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 - Writing Tools (HKLM-x32\...\{7135E09C-980F-4373-B211-04B05C996113}) (Version: 18.1 - Corel Corporation) Hidden
CorelDRAW Home & Student Suite X8 (HKLM-x32\...\_{3F0816AB-BA66-4B2F-933A-B533EFBC0098}) (Version: 18.1.0.690 - Corel Corporation)
CorelDRAW Home & Student Suite X8 (HKLM-x32\...\{05718EEC-DE09-454E-9D62-3152254742F1}) (Version: 18.1 - Corel Corporation) Hidden
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Fotogalerie (HKLM-x32\...\{F37D360D-9308-4BB1-8515-DC6B637B9486}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fritz 8 (HKLM-x32\...\{0830FBE8-A848-4A37-BF62-D89CB3EF0F60}) (Version: - )
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 74.0.3729.169 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{44ded3eb-1686-46a6-9770-fd79096c29f7}) (Version: 10.1.1.45 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1068 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6373 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.49.166.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{df682aff-4294-4ad1-aaa7-276931d5781f}) (Version: 1.49.166.0 - Intel Corporation) Hidden
IPM_Common_x86 (HKLM-x32\...\{EE61B6C5-F017-4505-85D3-6D40B1797D32}) (Version: 2.10.442 - Your Company Name) Hidden
Lenovo Active Protection System (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.82.00.18 - Lenovo)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\OneDriveSetup.exe) (Version: 19.070.0410.0005 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2015 (HKLM-x32\...\{dd8b09df-3ef8-49f1-bd1a-65278435860b}) (Version: 14.0.23217 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{3D2CF65C-B544-4308-B996-700D3E5F6C4C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
OKI ActKey (HKLM-x32\...\InstallShield_{681B82EF-A457-4849-AABC-5B6099380FA5}) (Version: 1.7.1.0 - Oki Data Corporation)
OKI Color Swatch Utility (HKLM-x32\...\{A344F95E-E51A-450C-8F84-C940BF61903E}) (Version: 2.1.12 - Okidata)
OKI LPR Utility (HKLM-x32\...\{465914BD-324C-4442-A9F6-E9347AB38EB8}) (Version: 5.1.0 - Okidata)
OKI MC5(3)x2/ES5(3)4x2 Scanner (HKLM-x32\...\InstallShield_{14915907-DB64-49DC-BB9D-1935D38CD250}) (Version: 1.0.2.0 - Oki Data Corporation)
OKI PDF Print Direct (HKLM-x32\...\{2CA86624-3491-4B2D-B64E-01D2D25AA732}) (Version: 3.4.8 - Okidata)
ScannerDriver (HKLM\...\{14915907-DB64-49DC-BB9D-1935D38CD250}) (Version: 1.0.2.0 - Oki Data Corporation) Hidden
SMPlayer 19.1.0 (HKLM-x32\...\SMPlayer) (Version: 19.1.0 - Ricardo Villalba)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22 - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)

Packages:
=========
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.13.5.0_x86__kgqvnymyfvs32 [2019-05-17] (king.com)
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1510.1.0_x86__kgqvnymyfvs32 [2019-05-20] (king.com)
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_4.0.0.1_x86__m9bz608c1b9ra [2019-03-20] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.520.0_x64__rz1tebttyb220 [2019-03-15] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2019-03-15] (Fitbit)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_4.27.32.0_x86__k1h2ywk1493x8 [2019-03-26] (LENOVO INC.)
LenovoUtility -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.0.52.0_x64__5grkq8ppsgwt4 [2019-04-17] (LENOVO INC)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2019-03-13] (LinkedIn)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.11601.20230.0_x86__8wekyb3d8bbwe [2019-05-26] (Microsoft Corporation)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.9.0_x64__nfy108tqq3p12 [2019-03-15] (Thumbmunkeys Ltd)
Power2Go for Lenovo -> C:\Program Files\WindowsApps\CyberLinkCorp.th.Power2GoforLenovo_8.0.9516.0_x86__m916jedk64snt [2019-03-13] (CYBERLINKCOM CORPORATION)
PowerDVD for Lenovo -> C:\Program Files\WindowsApps\CyberLinkCorp.th.PowerDVDforLenovo_14.1.9528.0_x86__m916jedk64snt [2019-03-13] (CYBERLINKCOM CORPORATION)
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.12831.0_x64__8wekyb3d8bbwe [2019-03-13] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [PDF Print Direct] -> {C15F7681-33D8-11D3-A09B-00500402F30B} => C:\Windows\System32\OkDrtPrn.dll [2012-05-28] (Oki Data Corporation) [File not signed]
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\igfxDTCM.dll [2018-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-05-27] (AVAST Software s.r.o. -> AVAST Software)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-11-29 00:13 - 2016-04-29 07:57 - 000132096 _____ (Conexant Systems, Inc.) [File not signed] C:\Program Files\Conexant\SAII\CxUtilSvc.exe
2011-08-23 15:33 - 2011-08-23 15:33 - 000163840 _____ (Oki Data Corporation) [File not signed] C:\Program Files (x86)\Okidata\ActKey\NCRes.dll
2010-01-22 18:22 - 2010-01-22 18:22 - 000032768 _____ (Oki Data Corporation) [File not signed] C:\Program Files (x86)\Okidata\ActKey\Scanner Assist\OPCOMAPI.dll
2011-08-19 14:15 - 2011-08-19 14:15 - 000188416 _____ (Oki Data Corporation) [File not signed] C:\Program Files (x86)\Okidata\ActKey\Scanner Assist\Scanner Assist.dll
2019-03-30 15:21 - 2010-04-21 15:04 - 000167424 ____N (Oki Data Corporation) [File not signed] C:\Program Files\Okidata\Common\opnetdsc.dll
2019-03-30 15:21 - 2012-05-28 09:54 - 000265216 ____N (Oki Data Corporation) [File not signed] C:\Windows\System32\OkDrtPrn.dll
2019-03-30 15:21 - 2011-04-12 19:05 - 000029696 ____N (Oki Data Corporation) [File not signed] C:\Windows\System32\oklprmon.dll
2019-03-30 15:21 - 2012-11-21 19:59 - 000033280 _____ (Oki Data Corporation) [File not signed] C:\Windows\SYSTEM32\oklprrsc.dll
2019-03-16 12:53 - 2018-08-12 21:29 - 001255424 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Filip\Desktop\chomutov_1920x1080.jpg
DNS Servers: 10.255.255.10 - 10.255.255.20
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2836F156-0C18-4A64-9297-5B438B1ACFE6}] => (Block) c:\Program Files (x86)\Corel\CorelDRAW Home & Student Suite X8\Programs\DrawHome.exe (Corel Corporation -> Corel Corporation)
FirewallRules: [{D340C275-19CC-4A62-8886-9553AA2A48F6}] => (Block) c:\Program Files (x86)\Corel\CorelDRAW Home & Student Suite X8\Programs\PPHome.exe (Corel Corporation -> Corel Corporation)
FirewallRules: [{08B88E32-3124-418B-A0BD-209A3E0EC850}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7ABAD88C-C188-4E1B-ABD9-38486F908D26}] => (Allow) LPort=2869
FirewallRules: [{A7806D7F-F3E2-4234-9746-7E0F5E925AB1}] => (Allow) LPort=1900
FirewallRules: [{B6183BC5-DA39-48EB-86C0-848EB1F7C1B6}] => (Allow) C:\Program Files (x86)\Okidata\ActKey\Network Configuration.exe (Oki Data Corporation -> Oki Data Corporation)
FirewallRules: [{9BC32188-C56A-4B45-A07E-413C5B1277EB}] => (Allow) C:\Program Files (x86)\Okidata\ActKey\Network Configuration.exe (Oki Data Corporation -> Oki Data Corporation)
FirewallRules: [{38479697-4EFC-4432-B22F-CB8FE6A76350}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)
FirewallRules: [{72BCF4CE-8ABE-42DE-BC6D-67EFD3F856D7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.11601.20230.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F06D3DA6-8EF6-4327-B98C-557FDCA0D831}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (AVAST Software s.r.o. -> AVAST Software)

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/28/2019 10:23:31 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů rdyboost. První čtyři bajty (DWORD) datové sekce obsahují kód chyby systému Windows.

Error: (05/28/2019 10:23:30 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (04/25/2019 10:37:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: rundll32.exe, verze: 10.0.17134.1, časové razítko: 0xe814db7d
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000a0430
ID chybujícího procesu: 0x8d3c
Čas spuštění chybující aplikace: 0x01d4fba6a6879754
Cesta k chybující aplikaci: C:\Windows\System32\rundll32.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 208b322a-9e3c-4540-a326-b29e27804142
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (04/16/2019 10:15:53 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchUI.exe verze 10.0.17134.706 přestal spolupracovat se systémem Windows a byl ukončen. Chcete-li zjistit, zda je k dispozici více informací o tomto problému, vyhledejte historii problému v ovládacím panelu Zabezpečení a údržba.

ID procesu: 3250

Čas spuštění: 01d4f4911cfe791a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe

ID hlášení: c3162e1a-40bc-49f9-b8ed-8937cf966c53

Úplný název balíčku s chybou: Microsoft.Windows.Cortana_1.10.7.17134_neutral_neutral_cw5n1h2txyewy

ID aplikace související s balíčkem s chybou: CortanaUI

Error: (04/14/2019 02:37:05 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-KRDM9FQ3)
Description: httphttp-2147467263

Error: (04/09/2019 09:38:49 PM) (Source: Perflib) (EventID: 1017) (User: )
Description: Sběr dat čítače výkonu od služby Outlook byl vypnut z důvodu jedné nebo více chyb generovaných knihovnou čítače výkonu pro tuto službu. Chyby, které vyvolaly tuto akci, byly zapsány do protokolu událostí aplikace. Opravte tyto chyby před novým zapnutím čítačů výkonu pro tuto službu.

Error: (04/09/2019 09:38:49 PM) (Source: Perflib) (EventID: 1021) (User: )
Description: Systém Windows nemůže otevřít 32bitovou knihovnu DLL rozšiřitelných čítačů Outlook v 64bitovém prostředí. Vyžádejte si od prodejce souboru 64bitovou verzi, popřípadě můžete 32bitovou knihovnu DLL rozšiřujících čítačů otevřít pomocí 32bitové verze nástroje Sledování výkonu. Jestliže chcete použít tento nástroj, otevřete složku systému Windows, otevřete složku Syswow64 a spusťte program Perfmon.exe.

Error: (04/06/2019 11:23:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.556, časové razítko: 0xf23cada5
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007c686
ID chybujícího procesu: 0x6c4
Čas spuštění chybující aplikace: 0x01d4ec55ce4b56fb
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: dcf30626-68e5-460d-8935-b6ed8e12e593
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (05/29/2019 04:41:53 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 04:23:28 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 04:09:17 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 03:53:28 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 03:43:36 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 03:43:29 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 03:38:43 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-KRDM9FQ3)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli LAPTOP-KRDM9FQ3\Filip (SID: S-1-5-21-3054716200-2897486703-4280449553-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (05/29/2019 03:38:27 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


CodeIntegrity:
===================================

Date: 2019-03-31 21:49:44.261
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-30 12:09:11.529
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-27 22:16:26.729
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-26 21:15:38.120
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-25 15:57:01.792
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-20 19:53:17.841
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-18 22:02:09.452
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume5\Program Files\AVAST Software\Avast\ashShell.dll that did not meet the Microsoft signing level requirements.

Date: 2019-03-13 15:39:48.180
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Common Files\mcafee\SystemCore\mfemms.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\mcafee\SystemCore\mfeaaca.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Memory info ===========================

BIOS: LENOVO 6SCN41WW 12/19/2018
Motherboard: LENOVO LNVNB161216
Processor: Intel(R) Core(TM) i5-8250U CPU @ 1.60GHz
Percentage of memory in use: 61%
Total physical RAM: 7613.43 MB
Available physical RAM: 2962.88 MB
Total Virtual: 8957.43 MB
Available Virtual: 3777.21 MB

==================== Drives ================================

Drive c: (Windows-SSD) (Fixed) (Total:118 GB) (Free:79.95 GB) NTFS
Drive d: (Data) (Fixed) (Total:931.5 GB) (Free:157.25 GB) NTFS

\\?\Volume{06ae05ca-f5ac-44c3-8fcb-05a3b728dc94}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.57 GB) NTFS
\\?\Volume{b1a6e7c9-a952-4104-9474-15cad919f268}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 28A5D9BC)

Partition: GPT.

========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: F5425621)

Partition: GPT.

==================== End of Addition.txt ============================

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-05.2019
Ran by Filip (administrator) on LAPTOP-KRDM9FQ3 (LENOVO 81AX) (29-05-2019 17:05:10)
Running from C:\Users\Filip\Desktop
Loaded Profiles: Filip (Available Profiles: Filip)
Platform: Windows 10 Home (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.1000_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\ApMsgFwd.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\ApntEx.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\Apoint.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\ApRemote.exe
(ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Windows\System32\Alps\GlidePoint\HidMonitorSvc.exe
(Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.154.333\AvastBrowserCrashHandler64.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(Conexant Systems, Inc.) [File not signed] C:\Program Files\CONEXANT\SAII\CxUtilSvc.exe
(Fortemedia Inc -> ) C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Ghisler Software GmbH -> Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_24de78387e6208e4\IntelCpHeciSvc.exe
(Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_10d045798a3d667e\aesm_service.exe
(Intel(R) Trust Services -> Intel(R) Corporation) C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.0.52.0_x64__5grkq8ppsgwt4\VFS\ProgramFilesX64\Lenovo\LenovoUtility\utility.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.44.40.1000_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Oki Data Corporation -> ) C:\Program Files\Okidata\OKI LPR Utility\okilpr.exe
(Oki Data Corporation -> Oki Data Corporation) C:\Program Files (x86)\Okidata\ActKey\Network Configuration.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek semiconductor) C:\Windows\RTFTrack.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\WINDOWS DEFENDER\MSASCUIL.EXE [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\PROGRAM FILES\CONEXANT\CAUDIOFILTERAGENT\CAUDIOFILTERAGENT64.EXE [603992 2017-06-24] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\PROGRAM FILES\CONEXANT\FORTECONFIG\FMAPP.EXE [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [SmartAudio] => /DELAY:45
HKLM\...\Run: [Network Configuration] => C:\PROGRAM FILES (X86)\OKIDATA\ACTKEY\NETWORK CONFIGURATION.EXE [725280 2012-08-27] (Oki Data Corporation -> Oki Data Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Winlogon: [Userinit]
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Run: [AvastBrowserAutoLaunch_A8AA2AE63066897F290B137CDE2B196A] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1951280 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22588760 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-21] (Google LLC -> Google Inc.)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\74.0.1376.132\Installer\chrmstp.exe [2019-05-28] (AVAST Software s.r.o. -> AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\OKI LPR Utility.lnk [2019-03-30]
ShortcutTarget: OKI LPR Utility.lnk -> C:\Program Files\Okidata\OKI LPR Utility\okilpr.exe (Oki Data Corporation -> )
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1492D9DB-D7F2-4BC2-8D6E-823F125C60ED} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1951280 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
Task: {1E8C7B41-BA0A-40AF-8CF3-4CC1133DD9F6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16571320 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {29CCDAFF-B9DB-4C7D-981A-E4F2D0AD5E3D} - System32\Tasks\RtsCM => C:\Windows\RtsCM64.exe [225216 2018-02-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
Task: {3C76A89B-AE82-43E0-8829-B051B9054BFA} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\7449f3c0-95d5-4303-b976-011ee8afcd6f => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {4688A714-0AF1-455E-9128-FF3E6AECC7D4} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {4D602D52-6BF7-40B7-82AB-03B8FBA396ED} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\4535f7ff-f69c-4de6-9382-a2715197f408 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {6A9FEDB5-678F-43A3-B672-AF7885229CCA} - System32\Tasks\CorelUpdateHelperTaskCore => C:\Program Files (x86)\Corel\CUH\v2\CUH.exe [1662200 2019-02-27] (Corel Corporation -> Corel Corporation)
Task: {70D1A26F-166E-4103-BE5D-E7F237724F4F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {78CA8D6E-9C6A-4C20-8FE0-60C0B109F1A3} - System32\Tasks\LenovoUtility Task => C:\Windows\explorer.exe lenovo-utility://
Task: {811D2AD3-F440-4ABD-847B-31E803C53C6A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2380088 2019-04-03] (AVAST Software s.r.o. -> AVAST Software)
Task: {8E69A78A-DAD8-48B2-AE9C-A9994B26B2CC} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {9C5CD607-B9F2-4155-BF78-36300C53F75E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-25] (Google Inc -> Google LLC)
Task: {A00765E5-4DDF-4252-8551-5C17D47D70F5} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {A9F2F132-0008-4B0D-B68B-11246A0A0FC9} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-05-09] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {AB89E52B-0DA2-4521-94AF-DF1F1EFBDC15} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {B0388BA0-BD59-4238-82F3-C8317933775B} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1951280 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
Task: {CDC98D23-9C74-4099-B860-1B41B6FBFF17} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-25] (Google Inc -> Google LLC)
Task: {D222C6EC-18EC-409C-8721-A0E9926A8D8F} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
Task: {E1D1F9AE-E813-4C90-AD6B-FACBA30220BE} - System32\Tasks\RTFTrack => C:\Windows\RTFTrack.exe [5462984 2018-02-06] (Realtek Semiconductor Corp. -> Realtek semiconductor)
Task: {E67323CC-28B6-4AF6-A6AA-66B559BE9AA1} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [54440 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
Task: {E86CB5D5-5017-4791-948E-DA4BD031A253} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\4d4bba95-c1b8-4826-baf3-373da95f3667 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.255.255.10 10.255.255.20
Tcpip\..\Interfaces\{afd7acdf-4d55-4f72-a87c-54f2f81f77f2}: [DhcpNameServer] 172.168.137.2
Tcpip\..\Interfaces\{dd0745eb-901b-4387-bd5a-174c3f643650}: [DhcpNameServer] 10.255.255.10 10.255.255.20

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.centrum.cz/
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default [2019-05-29]
CHR Extension: (Prezentace) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-18]
CHR Extension: (Dokumenty) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-18]
CHR Extension: (Disk Google) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-18]
CHR Extension: (YouTube) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-18]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-04-25]
CHR Extension: (Tabulky) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-18]
CHR Extension: (Avast Online Security) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-04-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-03-18]
CHR Extension: (Gmail) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\Filip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-23]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESMService; C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_10d045798a3d667e\aesm_service.exe [3367272 2018-11-28] (Intel(R) Software Development Products -> Intel Corporation)
R2 ApHidMonitorService; C:\Windows\system32\Alps\GlidePoint\HidMonitorSvc.exe [345456 2018-06-13] (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6844776 2019-05-28] (AVAST Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [409224 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2019-03-18] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\74.0.1376.132\elevation_service.exe [1079424 2019-05-14] (AVAST Software s.r.o. -> AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R2 CxUtilSvc; C:\Program Files\Conexant\SAII\CxUtilSvc.exe [132096 2016-04-29] (Conexant Systems, Inc.) [File not signed]
R2 esifsvc; C:\Windows\System32\Intel\DPTF\esif_uf.exe [1705040 2017-11-08] (Intel Corporation -> Intel Corporation)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [76968 2019-04-24] (Lenovo -> Lenovo Group Ltd.)
R3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [758552 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [719640 2018-03-02] (Intel(R) Trust Services -> Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
S3 McSecDashboardService; C:\Program Files\McAfeeDashboard\McSecDashboardService.exe [1270536 2019-02-26] (McAfee, Inc. -> McAfee, Inc.)
R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
R2 SAService; C:\Windows\system32\SAsrv.exe [416576 2016-10-28] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4413440 2019-03-14] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107160 2019-02-16] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ApHidfiltrService; C:\Windows\System32\drivers\ApHidFiltr.sys [292768 2018-06-13] (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [207448 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [262496 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15488 2019-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279120 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167872 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [477584 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [225096 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [385640 2019-05-27] (AVAST Software s.r.o. -> AVAST Software)
R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [69536 2017-11-08] (Intel Corporation -> Intel Corporation)
R3 esif_lf; C:\Windows\System32\drivers\esif_lf.sys [382880 2017-11-08] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [98968 2017-10-15] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R0 iaStorAC; C:\Windows\System32\drivers\iaStorAC.sys [1094792 2018-12-06] (Intel(R) Rapid Storage Technology -> Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [198208 2018-03-29] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 Netwtw04; C:\Windows\System32\drivers\Netwtw04.sys [8614464 2018-03-21] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [1010624 2017-12-21] (Realtek Semiconductor Corp. -> Realtek )
S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [421312 2017-12-19] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3236808 2018-02-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-28 20:46 - 2019-05-28 20:46 - 000000000 ____D C:\AdwCleaner
2019-05-28 20:45 - 2019-05-28 20:45 - 007025360 _____ (Malwarebytes) C:\Users\Filip\Desktop\adwcleaner_7.3.exe
2019-05-28 20:16 - 2019-05-28 20:17 - 000035997 ____C C:\Users\Filip\Desktop\Addition.txt
2019-05-28 20:15 - 2019-05-29 17:05 - 000027392 ____C C:\Users\Filip\Desktop\FRST.txt
2019-05-28 20:15 - 2019-05-29 17:05 - 000000000 ____D C:\FRST
2019-05-28 20:14 - 2019-05-28 20:14 - 002435584 _____ (Farbar) C:\Users\Filip\Desktop\FRST64.exe
2019-05-28 20:11 - 2019-05-28 20:11 - 000000874 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-05-28 20:10 - 2019-05-28 20:10 - 021315608 _____ (Piriform Software Ltd) C:\Users\Filip\Downloads\ccsetup557.exe
2019-05-27 19:41 - 2019-05-27 19:41 - 000363400 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2019-05-27 15:52 - 2019-05-27 15:52 - 000022016 ____C C:\Users\Filip\Desktop\chatky.xls
2019-05-22 21:33 - 2019-02-13 07:47 - 001909560 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2019-05-15 21:57 - 2019-05-03 08:33 - 005625152 _____ (Microsoft Corporation) C:\Windows\system32\StartTileData.dll
2019-05-15 21:57 - 2019-05-03 08:31 - 009084432 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2019-05-15 21:57 - 2019-05-03 08:31 - 007519888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2019-05-15 21:57 - 2019-05-03 08:31 - 007436536 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2019-05-15 21:57 - 2019-05-03 08:18 - 006569344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-05-15 21:57 - 2019-05-03 08:12 - 025855488 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2019-05-15 21:57 - 2019-05-03 08:10 - 022017024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2019-05-15 21:57 - 2019-05-03 08:05 - 022716416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2019-05-15 21:57 - 2019-05-03 08:02 - 019401216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2019-05-15 21:57 - 2019-05-03 08:01 - 008189440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2019-05-15 21:57 - 2019-05-03 07:59 - 007593472 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2019-05-15 21:57 - 2019-05-03 07:59 - 005788672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2019-05-15 21:57 - 2019-05-03 07:56 - 005350912 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2019-05-15 21:57 - 2019-05-03 07:54 - 004929024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2019-05-15 21:57 - 2019-04-19 12:39 - 012754944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2019-05-15 21:56 - 2019-05-03 14:14 - 000790208 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2019-05-15 21:56 - 2019-05-03 14:13 - 001376472 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2019-05-15 21:56 - 2019-05-03 14:13 - 000396088 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2019-05-15 21:56 - 2019-05-03 13:55 - 000123392 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2019-05-15 21:56 - 2019-05-03 13:54 - 000177664 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2019-05-15 21:56 - 2019-05-03 13:52 - 000119808 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2019-05-15 21:56 - 2019-05-03 13:51 - 003613696 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2019-05-15 21:56 - 2019-05-03 13:51 - 001364992 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2019-05-15 21:56 - 2019-05-03 13:50 - 004054528 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2019-05-15 21:56 - 2019-05-03 13:50 - 001663488 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2019-05-15 21:56 - 2019-05-03 13:49 - 001288704 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2019-05-15 21:56 - 2019-05-03 13:49 - 000488448 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2019-05-15 21:56 - 2019-05-03 13:49 - 000210944 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2019-05-15 21:56 - 2019-05-03 13:43 - 001027008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2019-05-15 21:56 - 2019-05-03 13:43 - 000662328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2019-05-15 21:56 - 2019-05-03 13:30 - 000138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2019-05-15 21:56 - 2019-05-03 13:30 - 000098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2019-05-15 21:56 - 2019-05-03 13:28 - 002882048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2019-05-15 21:56 - 2019-05-03 13:28 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2019-05-15 21:56 - 2019-05-03 13:27 - 000176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2019-05-15 21:56 - 2019-05-03 13:26 - 000425472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2019-05-15 21:56 - 2019-05-03 13:25 - 004055040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2019-05-15 21:56 - 2019-05-03 13:25 - 001471488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2019-05-15 21:56 - 2019-05-03 08:43 - 000177128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2019-05-15 21:56 - 2019-05-03 08:36 - 001035256 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2019-05-15 21:56 - 2019-05-03 08:34 - 000159864 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 001219896 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 001027384 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 000709720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2019-05-15 21:56 - 2019-05-03 08:33 - 000568104 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2019-05-15 21:56 - 2019-05-03 08:33 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2019-05-15 21:56 - 2019-05-03 08:33 - 000076088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2019-05-15 21:56 - 2019-05-03 08:33 - 000063072 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2019-05-15 21:56 - 2019-05-03 08:32 - 000793640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2019-05-15 21:56 - 2019-05-03 08:32 - 000776784 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2019-05-15 21:56 - 2019-05-03 08:32 - 000493880 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2019-05-15 21:56 - 2019-05-03 08:32 - 000438984 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2019-05-15 21:56 - 2019-05-03 08:32 - 000209208 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2019-05-15 21:56 - 2019-05-03 08:32 - 000170296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2019-05-15 21:56 - 2019-05-03 08:32 - 000164664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2019-05-15 21:56 - 2019-05-03 08:31 - 002811192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2019-05-15 21:56 - 2019-05-03 08:31 - 002771256 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2019-05-15 21:56 - 2019-05-03 08:31 - 001459328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2019-05-15 21:56 - 2019-05-03 08:31 - 001260480 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2019-05-15 21:56 - 2019-05-03 08:31 - 001141224 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2019-05-15 21:56 - 2019-05-03 08:31 - 001098064 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2019-05-15 21:56 - 2019-05-03 08:31 - 000983632 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2019-05-15 21:56 - 2019-05-03 08:31 - 000545808 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2019-05-15 21:56 - 2019-05-03 08:31 - 000412984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2019-05-15 21:56 - 2019-05-03 08:31 - 000115728 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2019-05-15 21:56 - 2019-05-03 08:20 - 000434704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2019-05-15 21:56 - 2019-05-03 08:20 - 000384976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2019-05-15 21:56 - 2019-05-03 08:20 - 000192016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2019-05-15 21:56 - 2019-05-03 08:20 - 000146920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2019-05-15 21:56 - 2019-05-03 08:19 - 006043712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2019-05-15 21:56 - 2019-05-03 08:19 - 000665224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2019-05-15 21:56 - 2019-05-03 08:19 - 000056288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2019-05-15 21:56 - 2019-05-03 08:18 - 002258640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2019-05-15 21:56 - 2019-05-03 08:18 - 001130568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2019-05-15 21:56 - 2019-05-03 08:02 - 004866048 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 006661632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 003400192 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 000120832 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
2019-05-15 21:56 - 2019-05-03 08:00 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 003710976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 001307648 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 000514560 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2019-05-15 21:56 - 2019-05-03 07:59 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 000204288 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2019-05-15 21:56 - 2019-05-03 07:59 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 002175488 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 001361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2019-05-15 21:56 - 2019-05-03 07:58 - 000462336 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2019-05-15 21:56 - 2019-05-03 07:58 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2019-05-15 21:56 - 2019-05-03 07:57 - 001826816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 001560576 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 001295872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 000808448 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 000608768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2019-05-15 21:56 - 2019-05-03 07:57 - 000561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 001803776 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 000773632 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2019-05-15 21:56 - 2019-05-03 07:56 - 000333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2019-05-15 21:56 - 2019-05-03 07:55 - 003090432 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2019-05-15 21:56 - 2019-05-03 07:55 - 002166784 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2019-05-15 21:56 - 2019-05-03 07:55 - 000659968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 001628672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 001097728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2019-05-15 21:56 - 2019-05-03 07:54 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000845824 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000778752 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2019-05-15 21:56 - 2019-05-03 07:54 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000669184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000543744 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000535552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000507392 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2019-05-15 21:56 - 2019-05-03 07:54 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2019-05-15 21:56 - 2019-05-03 07:53 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2019-05-15 21:56 - 2019-05-03 07:53 - 000186880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2019-05-15 21:56 - 2019-05-03 07:53 - 000184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2019-05-15 21:56 - 2019-05-03 07:53 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2019-05-15 21:56 - 2019-05-03 06:38 - 000001310 _____ C:\Windows\system32\tcbres.wim
2019-05-15 21:56 - 2019-04-23 09:13 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MixedRealityCapture.dll
2019-05-15 21:56 - 2019-04-23 08:14 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-05-15 21:56 - 2019-04-19 12:55 - 001634920 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2019-05-15 21:56 - 2019-04-19 12:54 - 000720200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2019-05-15 21:56 - 2019-04-19 12:40 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
2019-05-15 21:56 - 2019-04-19 12:38 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\RDSPnf.exe
2019-05-15 21:56 - 2019-04-19 12:38 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2019-05-15 21:56 - 2019-04-19 12:36 - 000346112 _____ (Microsoft Corporation) C:\Windows\system32\AcGenral.dll
2019-05-15 21:56 - 2019-04-19 12:34 - 000522240 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2019-05-15 21:56 - 2019-04-19 11:44 - 001454648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2019-05-15 21:56 - 2019-04-19 11:37 - 000607960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2019-05-15 21:56 - 2019-04-19 11:30 - 000036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll
2019-05-15 21:56 - 2019-04-19 11:28 - 011940864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2019-05-15 21:56 - 2019-04-19 11:26 - 002405888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AcGenral.dll
2019-05-15 21:56 - 2019-04-19 11:25 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2019-05-15 21:56 - 2019-04-19 07:07 - 000985400 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2019-05-15 21:56 - 2019-04-19 07:06 - 002571632 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000798520 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000713264 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000436024 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2019-05-15 21:56 - 2019-04-19 07:06 - 000274232 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2019-05-15 21:56 - 2019-04-19 07:02 - 000831800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2019-05-15 21:56 - 2019-04-19 07:01 - 001982008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2019-05-15 21:56 - 2019-04-19 07:01 - 000581592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2019-05-15 21:56 - 2019-04-19 07:01 - 000576016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2019-05-15 21:56 - 2019-04-19 07:01 - 000380728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2019-05-15 21:56 - 2019-04-19 06:43 - 000150016 _____ (Microsoft Corporation) C:\Windows\system32\fcon.dll
2019-05-15 21:56 - 2019-04-19 06:42 - 004384256 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2019-05-15 21:56 - 2019-04-19 06:41 - 000140288 _____ (Microsoft Corporation) C:\Windows\system32\mdmmigrator.dll
2019-05-15 21:56 - 2019-04-19 06:41 - 000095232 _____ (Microsoft Corporation) C:\Windows\system32\EduPrintProv.exe
2019-05-15 21:56 - 2019-04-19 06:40 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
2019-05-15 21:56 - 2019-04-19 06:40 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\JpnServiceDS.dll
2019-05-15 21:56 - 2019-04-19 06:40 - 000172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\enrollmentapi.dll
2019-05-15 21:56 - 2019-04-19 06:40 - 000167936 _____ (Microsoft Corporation) C:\Windows\system32\FilterDS.dll
2019-05-15 21:56 - 2019-04-19 06:40 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetDriverInstall.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 005307392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000567296 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000425472 _____ (Microsoft Corporation) C:\Windows\system32\SDDS.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000374784 _____ (Microsoft Corporation) C:\Windows\system32\BingASDS.dll
2019-05-15 21:56 - 2019-04-19 06:39 - 000361472 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2019-05-15 21:56 - 2019-04-19 06:39 - 000204288 _____ (Microsoft Corporation) C:\Windows\system32\enrollmentapi.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 002368512 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000593408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000300544 _____ (Microsoft Corporation) C:\Windows\system32\dmenterprisediagnostics.dll
2019-05-15 21:56 - 2019-04-19 06:38 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000953856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000445952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000397312 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2019-05-15 21:56 - 2019-04-19 06:37 - 000118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 002909696 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 001300992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000827392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000814592 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000546816 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000357888 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2019-05-15 21:56 - 2019-04-19 06:36 - 000186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001938944 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001458688 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001175552 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 001156608 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000784896 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000607232 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000523776 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2019-05-15 21:56 - 2019-04-19 06:35 - 000312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapibase.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000935936 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000899584 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000885760 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2019-05-15 21:56 - 2019-04-19 06:34 - 000653312 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2019-05-15 21:56 - 2019-04-19 05:18 - 000806360 _____ C:\Windows\SysWOW64\locale.nls
2019-05-15 21:56 - 2019-04-19 05:18 - 000806360 _____ C:\Windows\system32\locale.nls
2019-05-15 21:56 - 2019-04-09 03:48 - 001311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000376320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2019-05-15 21:56 - 2019-04-09 03:48 - 000240640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000205992 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.Modern.CoreTypes.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000130728 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.Modern.Utilities.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000097448 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.Modern.ImController.ImClient.dll
2019-05-10 05:47 - 2019-04-24 09:06 - 000043688 _____ (Lenovo Group Ltd.) C:\Windows\system32\Lenovo.ImController.EventLogging.dll
2019-04-29 21:30 - 2019-04-29 21:30 - 031687968 _____ C:\Users\Filip\Downloads\XnView-win-full.exe

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-05-29 16:41 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-05-29 16:09 - 2019-04-25 15:32 - 000003400 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-05-29 16:09 - 2019-04-25 15:32 - 000003176 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-05-29 16:09 - 2019-03-30 14:31 - 000002988 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-05-29 16:09 - 2019-03-30 14:31 - 000002238 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-05-29 16:09 - 2019-03-20 20:13 - 000003482 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2019-05-29 16:09 - 2019-03-18 23:57 - 000002598 _____ C:\Windows\System32\Tasks\CorelUpdateHelperTaskCore
2019-05-29 16:09 - 2019-03-14 06:49 - 000002862 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3054716200-2897486703-4280449553-1001
2019-05-29 16:09 - 2018-11-29 00:18 - 000003492 _____ C:\Windows\System32\Tasks\LenovoUtility Task
2019-05-29 16:09 - 2018-11-29 00:15 - 000002024 _____ C:\Windows\System32\Tasks\RTFTrack
2019-05-29 16:09 - 2018-11-29 00:15 - 000002016 _____ C:\Windows\System32\Tasks\RtsCM
2019-05-29 16:09 - 2018-04-17 21:03 - 000002770 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2
2019-05-29 16:04 - 2019-03-18 18:15 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2019-05-29 15:38 - 2019-03-14 03:55 - 000000000 __SHD C:\Users\Filip\IntelGraphicsProfiles
2019-05-29 06:03 - 2019-03-13 23:18 - 000000000 ____D C:\Users\Filip\.smplayer
2019-05-29 05:55 - 2018-04-17 21:01 - 000000000 ____D C:\Windows\system32\SleepStudy
2019-05-28 21:23 - 2019-04-17 17:14 - 000003856 _____ C:\Windows\System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly)
2019-05-28 21:23 - 2019-04-17 17:14 - 000003272 _____ C:\Windows\System32\Tasks\Avast Secure Browser Heartbeat Task (Logon)
2019-05-28 21:23 - 2019-03-18 18:17 - 000002509 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2019-05-28 20:51 - 2018-11-29 00:52 - 000683294 _____ C:\Windows\system32\perfh005.dat
2019-05-28 20:51 - 2018-11-29 00:52 - 000137174 _____ C:\Windows\system32\perfc005.dat
2019-05-28 20:51 - 2018-04-17 21:07 - 001601516 _____ C:\Windows\system32\PerfStringBackup.INI
2019-05-28 20:51 - 2018-04-12 01:36 - 000000000 ____D C:\Windows\INF
2019-05-28 20:47 - 2018-04-17 21:02 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-05-28 20:46 - 2018-04-11 23:04 - 000524288 _____ C:\Windows\system32\config\BBI
2019-05-28 15:41 - 2019-03-14 03:51 - 000000000 ___DC C:\Users\Filip\AppData\Local\Host App Service
2019-05-28 06:05 - 2019-04-26 19:46 - 000011299 _____ C:\Users\Filip\Desktop\mamka_narozky.xlsx
2019-05-27 19:41 - 2019-03-18 18:15 - 001030784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000477584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000385640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000279120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000262496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000225096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000207448 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000205848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000167872 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000112312 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000087944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000061472 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000042288 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000037104 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2019-05-27 19:41 - 2019-03-18 18:15 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2019-05-27 19:41 - 2018-04-12 01:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2019-05-27 15:38 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\AppReadiness
2019-05-26 22:07 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-05-24 17:43 - 2019-03-14 03:57 - 000000000 ___RD C:\Users\Filip\OneDrive
2019-05-24 17:43 - 2019-03-14 03:51 - 000002376 ____C C:\Users\Filip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-05-22 21:54 - 2018-04-12 01:30 - 000000000 ____D C:\Windows\CbsTemp
2019-05-22 21:36 - 2018-11-29 00:12 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2019-05-22 21:36 - 2018-11-29 00:11 - 000000000 ____D C:\Program Files\Intel
2019-05-22 21:36 - 2018-11-29 00:11 - 000000000 ____D C:\Program Files (x86)\Intel
2019-05-21 21:22 - 2019-04-25 15:33 - 000002312 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-05-21 21:22 - 2019-04-25 15:33 - 000002271 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-05-19 19:22 - 2019-03-14 03:55 - 000000000 ___DC C:\Users\Filip\AppData\Local\Packages
2019-05-17 15:40 - 2019-03-31 22:27 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-05-17 13:06 - 2019-03-13 23:15 - 000000000 ____D C:\Program Files\rempl
2019-05-16 17:55 - 2018-04-17 21:01 - 000501264 _____ C:\Windows\system32\FNTCACHE.DAT
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\TextInput
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\ShellExperiences
2019-05-15 22:49 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\bcastdvr
2019-05-15 21:57 - 2019-03-13 23:32 - 000000000 ____D C:\Windows\system32\MRT
2019-05-15 21:55 - 2019-03-13 23:32 - 132445408 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2019-05-10 05:50 - 2019-03-14 03:51 - 000000000 ____D C:\Users\Filip
2019-05-08 21:21 - 2018-11-29 00:18 - 000000000 ____D C:\ProgramData\McAfee
2019-05-04 01:53 - 2018-04-12 01:41 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2019-05-04 01:53 - 2018-04-12 01:41 - 000179816 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2019-05-01 20:31 - 2019-03-25 19:47 - 000000000 ___DC C:\Users\Filip\AppData\Local\Windows Live

==================== Files in the root of some directories =======

2019-03-31 22:26 - 2019-03-31 22:27 - 050916512 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ (1).exe
2019-03-30 14:34 - 2019-03-30 14:34 - 038624400 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ.exe
2019-03-30 14:30 - 2019-03-30 14:31 - 021205512 _____ (Piriform Software Ltd) C:\Users\Filip\ccsetup555.exe
2019-04-25 15:27 - 2019-04-25 15:27 - 001214008 _____ (Google LLC) C:\Users\Filip\ChromeSetup.exe

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#6 Příspěvek od Conder »

:arrow: Zapni obnovu systemu
  • Stlac Win+R, napis "sysdm.cpl" (bez uvodzoviek) a stlac enter
  • Klikni na kartu Ochrana systemu a potom na Konfigurovat
  • Vyber moznost Zapnut ochranu systemu a klikni na OK
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    ExportKey: HKLM\Software\Microsoft\Windows\CurrentVersion\Run
    ExportValue: HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon
    ExportKey: HKLM\SOFTWARE\Policies\Mozilla
    File: C:\Program Files\Conexant\SAII\CxUtilSvc.exe
    
    HKLM\...\Run: [SmartAudio] => /DELAY:45
    FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
    HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
    HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
    S3 McSecDashboardService; C:\Program Files\McAfeeDashboard\McSecDashboardService.exe [1270536 2019-02-26] (McAfee, Inc. -> McAfee, Inc.)
    U1 aswbdisk; no ImagePath
    2019-05-08 21:21 - 2018-11-29 00:18 - 000000000 ____D C:\ProgramData\McAfee
    2019-03-31 22:26 - 2019-03-31 22:27 - 050916512 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ (1).exe
    2019-03-30 14:34 - 2019-03-30 14:34 - 038624400 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ.exe
    2019-03-30 14:30 - 2019-03-30 14:31 - 021205512 _____ (Piriform Software Ltd) C:\Users\Filip\ccsetup555.exe
    2019-04-25 15:27 - 2019-04-25 15:27 - 001214008 _____ (Google LLC) C:\Users\Filip\ChromeSetup.exe
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
    C:\Program Files\McAfeeDashboard
    C:\Program Files\mcafee
    C:\Program Files\Common Files\mcafee
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Filis
Návštěvník
Návštěvník
Příspěvky: 205
Registrován: 21 čer 2005 11:18

Re: Prosím o preventivku

#7 Příspěvek od Filis »

Fix result of Farbar Recovery Scan Tool (x64) Version: 30-05.2019
Ran by Filip (31-05-2019 20:01:52) Run:1
Running from C:\Users\Filip\Desktop
Loaded Profiles: Filip (Available Profiles: Filip)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
ExportKey: HKLM\Software\Microsoft\Windows\CurrentVersion\Run
ExportValue: HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon
ExportKey: HKLM\SOFTWARE\Policies\Mozilla
File: C:\Program Files\Conexant\SAII\CxUtilSvc.exe

HKLM\...\Run: [SmartAudio] => /DELAY:45
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
S3 McSecDashboardService; C:\Program Files\McAfeeDashboard\McSecDashboardService.exe [1270536 2019-02-26] (McAfee, Inc. -> McAfee, Inc.)
U1 aswbdisk; no ImagePath
2019-05-08 21:21 - 2018-11-29 00:18 - 000000000 ____D C:\ProgramData\McAfee
2019-03-31 22:26 - 2019-03-31 22:27 - 050916512 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ (1).exe
2019-03-30 14:34 - 2019-03-30 14:34 - 038624400 _____ (Adobe Systems Incorporated) C:\Users\Filip\AcroRdrDC1500720033_cs_CZ.exe
2019-03-30 14:30 - 2019-03-30 14:31 - 021205512 _____ (Piriform Software Ltd) C:\Users\Filip\ccsetup555.exe
2019-04-25 15:27 - 2019-04-25 15:27 - 001214008 _____ (Google LLC) C:\Users\Filip\ChromeSetup.exe
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
C:\Program Files\McAfeeDashboard
C:\Program Files\mcafee
C:\Program Files\Common Files\mcafee

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 21
Average :
Sum : 85680895
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

================== ExportKey: ===================

[HKLM\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"="%PROGRAMFILES%\WINDOWS DEFENDER\MSASCUIL.EXE"
"cAudioFilterAgent"=""C:\PROGRAM FILES\CONEXANT\CAUDIOFILTERAGENT\CAUDIOFILTERAGENT64.EXE""
"ForteConfig"=""C:\PROGRAM FILES\CONEXANT\FORTECONFIG\FMAPP.EXE""
"SmartAudio"="/DELAY:45"
"Network Configuration"="C:\PROGRAM FILES (X86)\OKIDATA\ACTKEY\NETWORK CONFIGURATION.EXE /RUNWITHOS"
"AvastUI.exe"=""C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui"

=== End of ExportKey ===
================== ExportValue: ===================

[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon]
"DefaultDomainName"=""
"DefaultUserName"=""
"EnableSIHostIntegration"="1"
"PreCreateKnownFolders"="{A520A1A4-1780-4FF6-BD18-167343C5AF16}"
"Shell"="explorer.exe"
"ShellCritical"="0"
"SiHostCritical"="0"
"SiHostReadyTimeOut"="0"
"SiHostRestartCountLimit"="0"
"SiHostRestartTimeGap"="0"

=== End of ExportValue ===
================== ExportKey: ===================

[HKLM\SOFTWARE\Policies\Mozilla]
[HKLM\SOFTWARE\Policies\Mozilla\Firefox]
[HKLM\SOFTWARE\Policies\Mozilla\Firefox\Certificates]
"ImportEnterpriseRoots"="1"

=== End of ExportKey ===

========================= File: C:\Program Files\Conexant\SAII\CxUtilSvc.exe ========================

C:\Program Files\Conexant\SAII\CxUtilSvc.exe
File not signed
MD5: 85C05B3B6A3627FBB32EA3EC17BC9517
Creation and modification date: 2018-11-29 00:13 - 2016-04-29 07:57
Size: 000132096
Attributes: ----A
Company Name: Conexant Systems, Inc.
Internal Name: CxUtilSvc
Original Name: CxUtilSvc.exe
Product: Utility Service
Description: Utility Service
File Version: 2.5.0.0
Product Version: 2.5.0.0
Copyright: © 2011,2012 Conexant Systems, Inc.
VirusTotal: https://www.virustotal.com/file/b141389 ... 559153581/

====== End of File: ======

"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SmartAudio" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
"HKU\S-1-5-21-3054716200-2897486703-4280449553-1001\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages" => removed successfully
HKLM\System\CurrentControlSet\Services\McSecDashboardService => removed successfully
McSecDashboardService => service removed successfully
HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected
C:\ProgramData\McAfee => moved successfully
C:\Users\Filip\AcroRdrDC1500720033_cs_CZ (1).exe => moved successfully
C:\Users\Filip\AcroRdrDC1500720033_cs_CZ.exe => moved successfully
C:\Users\Filip\ccsetup555.exe => moved successfully
C:\Users\Filip\ChromeSetup.exe => moved successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => removed successfully
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => removed successfully
HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS => removed successfully
C:\Program Files\McAfeeDashboard => moved successfully
"C:\Program Files\mcafee" => not found
"C:\Program Files\Common Files\mcafee" => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 23205158 B
Java, Flash, Steam htmlcache => 524 B
Windows/system/drivers => 2716584 B
Edge => 7970 B
Chrome => 426199735 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 498496 B
systemprofile32 => 0 B
LocalService => 904 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
Filip => 8975634 B

RecycleBin => 0 B
EmptyTemp: => 450.2 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 31-05-2019 20:04:55)


Result of scheduled keys to remove after reboot:

HKLM\System\CurrentControlSet\Services\aswbdisk => could not remove, key could be protected

==== End of Fixlog 20:04:55 ====

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#8 Příspěvek od Conder »

:arrow: Ako to vyzera s PC? Nastala nejaka zmena alebo su este s PC nejake problemy?
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Filis
Návštěvník
Návštěvník
Příspěvky: 205
Registrován: 21 čer 2005 11:18

Re: Prosím o preventivku

#9 Příspěvek od Filis »

Žádné problémy nezaznamenávám.

Díky moc za pomoc!

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#10 Příspěvek od Conder »

:arrow: Tak este upraceme po pouzitych nastrojoch:
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Filis
Návštěvník
Návštěvník
Příspěvky: 205
Registrován: 21 čer 2005 11:18

Re: Prosím o preventivku

#11 Příspěvek od Filis »

:idea:

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivku

#12 Příspěvek od Conder »

OK, to by bolo vsetko z mojej strany :)
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Odpovědět